Skip to content
VulniPulse

Complete feed

Security advisories & CVEs

7850 advisories across 32 monitored vendors.

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High8.7Red Hat

High [CVE-2026-66787] cross-cluster DNS spoofing via unvalidated EndpointSlice and ServiceImport IPs

cross-cluster DNS spoofing via unvalidated EndpointSlice and ServiceImport IPs. Red Hat rates this important (CVSS 8.7). Weakness: CWE-345. Affected product named by the advisory: Red Hat Advanced Cluster Management for Kubernetes 2.

CVE-2026-66787
Unclassified
Aug 20, 2026
High8.6Red Hat Updated

High [CVE-2026-63387] Off-by-one stack buffer overflow leading to denial of service or data corruption

Off-by-one stack buffer overflow leading to denial of service or data corruption. Red Hat rates this important (CVSS 8.6). Weakness: CWE-787. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: libevent2.

CVE-2026-63387
Red Hat Enterprise Linux
Aug 20, 2026
High7.5Red Hat Updated

High [CVE-2026-63384] Denial of Service via integer conversion error in `evtag_unmarshal_header`

Denial of Service via integer conversion error in `evtag_unmarshal_header`. Red Hat rates this important (CVSS 7.5). Weakness: CWE-190. Red Hat lists fixing advisory RHSA-2026:60853 with package libevent-main-2.1.12-19.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: libevent2.

CVE-2026-63384
Red Hat Enterprise Linux
Aug 20, 2026
High7.5Red Hat Updated

High [CVE-2026-63495] Remote denial of service via unbounded memory accumulation in WebSocket server

Remote denial of service via unbounded memory accumulation in WebSocket server. Red Hat rates this important (CVSS 7.5). Weakness: CWE-770. Red Hat lists fixing advisory RHSA-2026:41176 with package libevent-main-2.1.12-19.hum1. Affected products named by the advisory: Red Hat Hardened Images; Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; Red Hat OpenShift Container Platform 4; Red Hat package: libevent2.

CVE-2026-63495
Red Hat Enterprise Linux
Aug 20, 2026
High7.5Red Hat Updated

High [CVE-2026-63383] Denial of Service via malformed RPC data

Denial of Service via malformed RPC data. Red Hat rates this important (CVSS 7.5). Weakness: CWE-125. Red Hat lists fixing advisory RHSA-2026:60853 with package libevent-main-2.1.12-19.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: libevent2.

CVE-2026-63383
Red Hat Enterprise Linux
Aug 20, 2026
High8.4Red Hat Updated

High [CVE-2026-63388] Arbitrary code execution via heap out-of-bounds write in AF_UNIX handling

Arbitrary code execution via heap out-of-bounds write in AF_UNIX handling. Red Hat rates this important (CVSS 8.4). Weakness: CWE-787. Red Hat lists fixing advisory RHSA-2026:60853 with package libevent-main-2.1.12-19.1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 4 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat OpenShift Container Platform 4; Red Hat package: libevent2.

CVE-2026-63388
Red Hat Enterprise Linux
Aug 20, 2026
High7.4Red Hat Updated

High [CVE-2026-54770] Open redirect vulnerability leading to phishing and token theft

Open redirect vulnerability leading to phishing and token theft. Red Hat rates this important (CVSS 7.4). Weakness: CWE-601. Affected products named by the advisory: Red Hat Ceph Storage 4; Red Hat Ceph Storage 7; Red Hat Ceph Storage 8; Red Hat Enterprise Linux 6; and 7 more. Affected products named by the advisory: Red Hat Enterprise Linux 7; Red Hat OpenShift Container Platform 4; Red Hat OpenStack Platform 16.2; Red Hat OpenStack Platform 17.1; and 3 more.

CVE-2026-54770
Red Hat Enterprise Linux
Aug 20, 2026
High8.8Red Hat Updated

High [CVE-2026-15679] Hugging Face PyTorch Image Models: Remote Code Execution via Deserialization of Untrusted Data

Hugging Face PyTorch Image Models: Remote Code Execution via Deserialization of Untrusted Data. Red Hat rates this important (CVSS 8.8). Weakness: CWE-502. Affected products named by the advisory: Red Hat AI Inference Server; Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-15679
Unclassified
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18309] Remote Code Execution via APNG file parsing integer overflow

Remote Code Execution via APNG file parsing integer overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat package: gimp.

CVE-2026-18309
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18308] Remote Code Execution via TIF File Parsing Integer Overflow

Remote Code Execution via TIF File Parsing Integer Overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 9; Red Hat package: gimp.

CVE-2026-18308
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18307] Remote code execution via TIF file parsing heap-based buffer overflow

Remote code execution via TIF file parsing heap-based buffer overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-131. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18307
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18306] Remote Code Execution via SGI File Parsing Integer Overflow

Remote Code Execution via SGI File Parsing Integer Overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18306
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18305] Remote Code Execution via TIF file parsing integer overflow

Remote Code Execution via TIF file parsing integer overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18305
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18304] Arbitrary code execution via crafted TIF file parsing

Arbitrary code execution via crafted TIF file parsing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18304
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18303] Remote code execution via TIF file parsing vulnerability

Remote code execution via TIF file parsing vulnerability. Red Hat rates this important (CVSS 7.8). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18303
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18302] Remote code execution via TIF file parsing heap-based buffer overflow

Remote code execution via TIF file parsing heap-based buffer overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-120. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18302
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18301] Remote code execution via PSD file parsing integer overflow

Remote code execution via PSD file parsing integer overflow. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 1 more. Affected products named by the advisory: Red Hat package: gimp.

CVE-2026-18301
Red Hat Enterprise Linux
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18300] Remote code execution via integer overflow in HDR file parsing

Remote code execution via integer overflow in HDR file parsing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-190. Affected products named by the advisory: Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9; and 2 more. Affected products named by the advisory: Red Hat package: gimp; Red Hat package: gegl04.

CVE-2026-18300
Red Hat Enterprise Linux
Aug 20, 2026
High8.8Red Hat Updated

High [CVE-2026-18299] Remote Code Execution via Use-After-Free in rtpsbcdepay

Remote Code Execution via Use-After-Free in rtpsbcdepay. Red Hat rates this important (CVSS 8.8). Weakness: CWE-386. Red Hat lists fixing advisory RHSA-2026:59152 with package gstreamer1-plugins-good-0:1.26.7-2.el10_2.8, gstreamer1-plugins-good-0:1.22.12-7.el9_8.8, gstreamer1-plugins-good-0:1.16.1-7.el8_10.7. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8.

CVE-2026-18299
Unclassified
Aug 20, 2026
High7.8Red Hat Updated

High [CVE-2026-18298] Remote code execution via heap-based buffer overflow in PNG file parsing

Remote code execution via heap-based buffer overflow in PNG file parsing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:59152 with package gstreamer1-plugins-good-0:1.22.12-7.el9_8.8, gstreamer1-plugins-good-0:1.16.1-7.el8_10.7, gstreamer1-plugins-good-0:1.26.7-2.el10_2.7. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 10.

CVE-2026-18298
Unclassified
Aug 20, 2026